
WP Reading Progress Security & Risk Analysis
wordpress.org/plugins/wp-reading-progressLight weight fully customizable reading progress bar. Sticks to top, bottom or sticky menu, with fallback for small screens. Includes ert (beta).
Is WP Reading Progress Safe to Use in 2026?
Generally Safe
Score 100/100WP Reading Progress has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The wp-reading-progress v1.7.0 plugin exhibits a generally good security posture based on the provided static analysis. The absence of dangerous functions, reliance on prepared statements for all SQL queries, and the presence of nonce and capability checks are positive indicators. Furthermore, the lack of known vulnerabilities and critical taint flows suggests a mature and well-maintained codebase.
However, a concern arises from the output escaping. With 31 total outputs and only 71% properly escaped, this leaves a portion of the plugin's output potentially vulnerable to Cross-Site Scripting (XSS) attacks. While the attack surface is small and currently has no unprotected entry points, this unescaped output represents the most significant risk identified in the code analysis.
In conclusion, the plugin demonstrates strong practices in critical areas like SQL handling and authentication. The primary weakness lies in the insufficient output escaping. The absence of any historical vulnerabilities is a strong positive, suggesting a commitment to security. Addressing the output escaping issue would significantly strengthen its overall security.
Key Concerns
- Insufficient output escaping (29% unescaped)
WP Reading Progress Security Vulnerabilities
WP Reading Progress Code Analysis
Output Escaping
WP Reading Progress Attack Surface
Shortcodes 1
WordPress Hooks 8
Maintenance & Trust
WP Reading Progress Maintenance & Trust
Maintenance Signals
Community Trust
WP Reading Progress Alternatives
Reading progressbar
reading-progress-bar
A reading position indicator that you can use where you want: top, bottom or custom position in differents templates or post types.
Catch Scroll Progress Bar
catch-scroll-progress-bar
Catch Scroll Progress Bar - Catch Scroll Progress Bar is a simple, super-light WordPress progress bar plugin that has the most essential features to s …
ReadBar – Smart Reading Time & Dynamic Progress Bar
read-bar
Add estimated reading time and a dynamic reading progress bar to your WordPress posts and pages to boost content engagement and improve readability.
WP Post Reading Progress
wp-post-reading-progress
Add time to read or progress bar to your posts and pages!
Read Meter – Reading Time & Progress Bar
read-meter
The Read Meter plugin displays the estimated reading time for blog posts along with a progress bar.
WP Reading Progress Developer Profile
6 plugins · 3K total installs
How We Detect WP Reading Progress
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wp-reading-progress/wp-reading-progress.min.js/wp-content/plugins/wp-reading-progress/admin.min.js/wp-content/plugins/wp-reading-progress/wp-reading-progress.min.jswp-reading-progress.min.js?ver=HTML / DOM Fingerprints
wp-reading-progress-ertdata-ertdata-minutes_ruigehond006_showruigehond006_c<span class='wp-reading-progress-ert post-